Page 1 of 1

Drive-By Download Poisons Google Search Results

Posted: Tue May 19, 2009 7:30 pm
by BreakingBacks
Drive-By Download Poisons Google Search Results

"A new attack that peppers Google search results with malicious links is spreading quickly, CERT has warned. The attack, which can be found on several thousand legitimate Web sites, exploits flaws in Adobe software to install malware that steals FTP login credentials and hijacks the victim's browser, replacing Google search results with links chosen by the attackers. Known as Gumblar because at one point it used the Gumblar.cn domain, the attack is spreading quickly in part because its creators have been good at obfuscating their attack code and because they are using FTP login credentials to change folder permissions, leaving multiple ways they can get back into the server."

http://tech.slashdot.org/article.pl?sid ... 3&from=rss